Privacy & Policy

DOUBLE CHABI BASMATI RICE PRIVACY POLICY

 

Effective Date:                                   August 2026

1.   Introduction

Double Chabi Basmati Rice ("Company", "we", "our", or "us") is committed to respecting and protecting the privacy of individuals whose personal data we collect.

This Privacy Policy explains how we collect, use, process, store, disclose and protect Personal Data collected through our website, dealer portal, mobile applications, customer support channels, social media pages, promotional campaigns, business interactions and any other products or services offered by us.

This Privacy Policy is intended to comply with the applicable provisions of the Digital Personal Data Protection Act, 2023, the Information Technology Act, 2000 and other applicable laws of India.

2.   Definitions - For the purposes of this Privacy Policy:

 

·        Personal Data means any data about an individual who is identifiable by or in relation to such data.

·        Data Principal means the individual to whom the Personal Data relates.

·        Data Fiduciary means Double Chabi Basmati Rice.

·        Processing includes collection, storage, recording, organization, adaptation, retrieval, use, sharing, disclosure, transmission, deletion or destruction of Personal Data.

 

3.   Information We Collect - We may collect the following categories of information:

 

Personal Information

·        Name

·        Mobile number

·        Email address

·        Residential or business address

 

Business Information

·        GST Number

·        PAN

·        CIN

·        FSSAI Licence

·        Trade Licence

·        Dealer Registration documents

·        Banking information

·        Business correspondence

Transaction Information

·        Purchase history

·        Invoice details

·        Payment records

·        Delivery information

·        Order history

 

Technical Information

Where you visit our website or digital platforms, we may collect:

·        IP address

·        Browser type

·        Device information

·        Operating system

·        Cookies

·        Website usage analytics

·        Login records

 

1.   Purpose of Collection - We process Personal Data only for lawful purposes including:

·        processing orders;

·        supplying products;

·        managing dealer and distributor relationships;

·        verifying promotional campaigns;

·        customer support;

·        responding to complaints;

·        processing refunds;

·        fraud prevention;

·        internal administration;

·        legal compliance;

·        improving our products and services;

·        business analytics;

·        conducting surveys;

·        maintaining security;

·        enforcing contractual rights.

Where permitted by law, we may also send promotional communications.

 

2.      Legal Basis for Processing - We process Personal Data on one or more of the following grounds: consent of the Data Principal; performance of a contract; compliance with

 

legal obligations; employment-related purposes; legitimate uses permitted under applicable law.

 

3.   Consent - Where consent is required under applicable law, we shall obtain free, specific, informed, unconditional and unambiguous consent before processing Personal Data. The Data Principal may withdraw consent at any time in the manner prescribed by law. Withdrawal of consent shall not affect processing already undertaken before such withdrawal.

 

8.       Dealer and Business Information - Dealer, distributor and business partner information may be collected for: onboarding; KYC; credit assessment; statutory compliance; business relationship management; logistics; audit purposes; legal proceedings.

 

9.   Sharing of Information - We do not sell Personal Data. Personal Data may be shared only where necessary with: employees; transporters; logistics companies; payment gateways; banks; technology service providers; cloud service providers; auditors; legal advisors; insurers; government authorities; courts; regulators.

Each recipient shall receive only such information as is reasonably necessary.

 

10.   Cross-Border Transfer - Where permitted by applicable law, Personal Data may be processed or stored outside India by our service providers, subject to implementation of appropriate contractual and security safeguards.

 

11.   Data Security - The Company maintains reasonable technical and organizational security measures including:

·        access controls;

·        password protection;

·        encryption where appropriate;

·        firewalls;

·        anti-malware protection;

·        secure servers;

·        audit logs;

·        periodic security reviews;

·        employee confidentiality obligations.

No method of electronic storage is completely secure, and absolute security cannot be guaranteed.

12.   Data Retention - Personal Data shall be retained only for: contractual purposes; legal compliance; taxation; audit; dispute resolution; regulatory obligations.

Upon expiry of the applicable retention period, Personal Data shall be deleted or anonymized unless retention is required by law.

 

13.     Cookies - Our website may use: essential cookies; analytics cookies; performance cookies; security cookies. Users may modify browser settings to disable cookies. Certain website functions may not operate properly after disabling cookies.

Where required under applicable law, cookie consent shall be obtained before placing non-essential cookies on a user's device. Users may modify or withdraw their consent through available cookie preference settings.

 

14.   Rights of Data Principals - Subject to applicable law, a Data Principal may:

·        obtain information regarding processing;

·        seek correction of inaccurate information;

·        update personal information;

·        request erasure where legally permissible;

·        withdraw consent;

·        nominate another individual to exercise rights in accordance with applicable law;

·        seek grievance redressal.

 

15.   Grievance Redressal - Any grievance relating to processing of Personal Data may be submitted to our Grievance Officer. The Company shall endeavour to acknowledge and resolve grievances within the timelines prescribed under applicable law.

 

16.    Marketing Communications - Promotional emails, SMS, WhatsApp messages or other marketing communications shall be sent only where permitted under applicable law.

Recipients may opt out of such communications at any time. Operational communications relating to orders, invoices and legal notices may continue to be sent notwithstanding such opt-out.

 

17.    Third-Party Websites - Our website may contain links to third-party websites. The Company has no control over such websites and is not responsible for their privacy practices or content. Users should review the privacy policies of such third-party websites before providing Personal Data.

 

18.   Data Accuracy - Users are responsible for ensuring that the Personal Data provided is accurate, complete and up to date. The Company shall not be liable for losses arising from inaccurate information supplied by users.

 

19.   Data Breach - In the event of a Personal Data breach requiring notification under applicable law, the Company shall take appropriate remedial measures and comply with applicable statutory reporting obligations.

 

20.       Automated Decision-Making - The Company does not presently undertake automated decision-making or profiling that produces legal or similarly significant effects. Should such processing commence, appropriate notice shall be provided where required by law.

 

21.   Confidentiality - Employees, contractors and service providers handling Personal Data shall be bound by confidentiality obligations and appropriate contractual safeguards.

 

22.   Intellectual Property - Nothing contained in this Privacy Policy grants any licence or right in respect of the Company's trademarks, copyrights, logos, packaging designs or other intellectual property.

 

23.   Compliance with Law - The Company may retain, disclose or transfer Personal Data where required:

·        under applicable law;

·        pursuant to court orders;

·        at the request of law enforcement agencies;

·        for investigation of fraud;

·        to protect legal rights;

·        for public safety.

 

24.   Limitation of Liability - While the Company adopts reasonable security measures, it shall not be liable for: cyber-attacks beyond reasonable control; internet failures; unauthorized access despite reasonable safeguards; acts or omissions of third-party service providers beyond the Company's control.

Nothing in this clause limits liability where prohibited by applicable law.

 

25.    Policy Updates - The Company reserves the right to amend this Privacy Policy from time to time. The revised Privacy Policy shall become effective upon publication on the Company's website or other official communication channels.

 

26.    Governing Law - This Privacy Policy shall be governed by the laws of India. Any disputes arising from this Privacy Policy shall be subject to the exclusive jurisdiction of the competent courts having jurisdiction at Karnal (Haryana)

 

27.   Contact Details - For privacy-related queries or grievances, please contact:

 

Double Chabi Basmati Rice Grievance Officer: [Name] Email: [                                    ] Phone: +91 91515 15521

Address: [                                ]

 

28.   Declaration - By accessing our website, using our products or services, registering as a dealer or distributor, or otherwise interacting with the Company, you acknowledge that you have read and understood this Privacy Policy and that your Personal Data may be processed in accordance with this Privacy Policy and applicable law.